Vulnerability index

Browse CVEs

34 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2014-5570 The DailyFinance - Stocks & News (aka com.aol.mobile.dailyFinance) application 2.0.2.1 for Android does not verify X.509 certificates from SSL server… Dailyfinance Stocks \& News Mitigation only Fix from $1,6002014-09-09 MEDIUM 5.8 CVE-2012-5816 AOL Instant Messenger (AIM) 1.0.1.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltNam… Aim No fix yet Fix from $1,6002012-11-04 MEDIUM 5.0 CVE-2009-4494EPSS 9% AOLserver 4.5.1 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title,… Aolserver No fix yet Fix from $1,6002010-01-13 HIGH 8.8 CVE-2009-3658EPSS 9% Use-after-free vulnerability in the Sb.SuperBuddy.1 ActiveX control (sb.dll) in America Online (AOL) 9.5.0.1 allows remote attackers to trigger memor… Superbuddy Activex Control No fix yet Fix from $1,9502009-10-09 HIGH 9.3 CVE-2007-6250EPSS 24% Stack-based buffer overflow in AOL AOLMediaPlaybackControl (AOLMediaPlaybackControl.exe), as used by AmpX ActiveX control (AmpX.dll), might allow rem… Aolmediaplaybackcontrol Mitigation only Fix from $1,9502008-01-09 MEDIUM 5.8 CVE-2007-4901 The embedded Internet Explorer server control in AOL Instant Messenger (AIM) 6.1.41.2 and 6.2.32.1, AIM Pro, and AIM Lite does not properly constrain… Aim Lite Mitigation only Fix from $1,6002007-09-14 HIGH 7.8 CVE-2007-3437 AOL Instant Messenger (AIM) 6.1.32.1 on Windows XP allows remote attackers to cause a denial of service (application crash) via a malformed header va… Instant Messenger Mitigation only Fix from $1,9502007-06-27 HIGH 7.8 CVE-2007-3350 AOL Instant Messenger (AIM) 6.1.32.1 on Windows XP allows remote attackers to cause a denial of service (application hang) via a flood of spoofed SIP… Instant Messenger Mitigation only Fix from $1,9502007-06-22 HIGH 9.3 CVE-2006-5820EPSS 8% The LinkSBIcons method in the SuperBuddy ActiveX control (Sb.SuperBuddy.1) in America Online 9.0 Security Edition dereferences an arbitrary function … Aol Mitigation only Fix from $1,9502007-04-02 HIGH 7.8 CVE-2007-1767 Unspecified vulnerability in (1) Deskbar.dll and (2) Toolbar.dll in AOL 9.0 before February 2007 allows remote attackers to cause a denial of service… Aol Client Software Mitigation only Fix from $1,9502007-03-30 HIGH 9.3 CVE-2006-6442EPSS 5% Stack-based buffer overflow in the SetClientInfo function in the CDDBControlAOL.CDDBAOLControl ActiveX control (cddbcontrol.dll), as used in America … Aol Client Software Mitigation only Fix from $1,9502006-12-10 HIGH 7.5 CVE-2006-5650EPSS 67% The ICQPhone.SipxPhoneManager ActiveX control in America Online ICQ 5.1 allows remote attackers to download and execute arbitrary code via the Downlo… Icq Mitigation only Fix from $1,9502006-11-07 HIGH 7.5 CVE-2006-3887 Buffer overflow in AOL You've Got Pictures (YGP) Screensaver ActiveX control allows remote attackers to execute arbitrary code via unspecified vector… Ygp Screensaver Activex Control Mitigation only Fix from $1,9502006-10-10 HIGH 7.5 CVE-2006-3888EPSS 6% Buffer overflow in AOL You've Got Pictures (YGP) Pic Downloader YGPPDownload ActiveX control (AOL.PicDownloadCtrl.1, YGPPicDownload.dll), as used in … Ygp Pic Downloader Activex Control Mitigation only Fix from $1,9502006-10-10 MEDIUM 5.1 CVE-2006-0629 Unspecified vulnerability in AOL Instant Messenger (AIM) 5.9.3861 allows user-assisted remote attackers to cause a denial of service (client crash) a… Instant Messenger Mitigation only Fix from $1,6002006-02-10 HIGH 7.2 CVE-2006-0526 The default configuration of the America Online (AOL) client software allows all users to modify a certain registry value that specifies a DLL file n… Aol Client Software Mitigation only Fix from $1,9502006-02-02 HIGH 7.2 CVE-2005-2597 AOL Client Software 9.0 uses insecure permissions for its installation path, which allows local users to execute arbitrary code with SYSTEM privilege… Aol Client Software Mitigation only Fix from $1,9502005-08-17 MEDIUM 5.0 CVE-2005-1655 AOL Instant Messenger 5.5.x and earlier allows remote attackers to cause a denial of service (client crash) via an invalid smiley icon location in th… Instant Messenger No fix yet Fix from $1,6002005-05-18 MEDIUM 5.0 CVE-2001-1420 AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application crash) via a long filename, possibly caused by a bu… Instant Messenger No fix yet Fix from $1,6002005-05-02 HIGH 7.5 CVE-2004-2373 The Buddy icon file for AOL Instant Messenger (AIM) 4.3 through 5.5 is created in a predictable location, which may allow remote attackers to use a s… Instant Messenger No fix yet Fix from $1,9502004-12-31 MEDIUM 5.0 CVE-2002-1953 Heap-based buffer overflow in the goim handler of AOL Instant Messenger (AIM) 4.4 through 4.8.2616 allows remote attackers to cause a denial of servi… Instant Messenger No fix yet Fix from $1,6002002-12-31 MEDIUM 5.0 CVE-2002-0785 AOL Instant Messenger (AIM) allows remote attackers to cause a denial of service (crash) via an "AddBuddy" link with the ScreenName parameter set to … Instant Messenger No fix yet Fix from $1,6002002-08-12 HIGH 7.5 CVE-2002-0362 Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp request and … Instant Messenger No fix yet Fix from $1,9502002-05-29 HIGH 7.5 CVE-2002-1591 AOL Instant Messenger (AIM) 4.7.2480 adds free.aol.com to the Trusted Sites Zone in Internet Explorer without user approval, which could allow code f… Instant Messenger Mitigation only Fix from $1,9502002-04-08 HIGH 7.5 CVE-2002-0100 AOL AOLserver 3.4.2 Win32 allows remote attackers to bypass authentication and read password-protected files via a URL that directly references the f… Aol Server Mitigation only Fix from $1,9502002-03-25 MEDIUM 5.0 CVE-2001-1417 AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application hang or crash) via a buddy icon GIF file whose leng… Instant Messenger No fix yet Fix from $1,6002001-10-06 MEDIUM 5.0 CVE-2001-1418 AOL Instant Messenger (AIM) 4.7 allows remote attackers to cause a denial of service (application crash) via a malformed WAV file. Instant Messenger No fix yet Fix from $1,6002001-10-06 MEDIUM 5.0 CVE-2001-1419 AOL Instant Messenger (AIM) 4.7.2480 and earlier allows remote attackers to cause a denial of service (application crash) via an instant message that… Instant Messenger No fix yet Fix from $1,6002001-10-02 HIGH 7.5 CVE-2001-0314 Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary… Aol Server Mitigation only Fix from $1,9502001-06-02 MEDIUM 5.0 CVE-2001-0205EPSS 24% Directory traversal vulnerability in AOLserver 3.2 and earlier allows remote attackers to read arbitrary files by inserting "..." into the requested … Aol Server No fix yet Fix from $1,6002001-05-03